services / Azure / Migrate Site Recovery migration item
Performs the migration cutover of a migration item, bringing the workload up in its Azure target from the replicated data.
Migration cutover relocates the workload into the configured Azure target; an unauthorized invocation disrupts the source workload and instantiates it in an attacker-influenced target network or resource group.
Microsoft.RecoveryServices/Vaults/replicationFabrics/replicationProtectionContainers/replicationMigrationItems/migrate/action
Cuts the workload over to its Azure target, disrupting the source and landing the migrated instance in the configured (possibly attacker-controlled) target network.
Risks
Scope: HIGH
This privilege may grant access to sensitive data from a single organizational function, or allow interruption of a service supporting a single organizational function.
Links
Contributed by P0 Security
© 2023–present P0 Security and contributors to the IAM Privilege Catalog